MYKEEP

Advanced local tools for any AI agent.

A portable suite of capabilities that make any AI agent yours — your memory, your tools, your keys — all sealed on a USB stick. No cloud, no install, no lock-in.

PersonalPrivatePortable

How it works

You bring the agent. mykeep brings the capabilities.

mykeep has no AI of its own. Your agent — Claude Code, Cursor, or anything that can call a local API — does the thinking; mykeep hands it advanced capabilities it doesn't ship with, over a loopback connection on the stick. Your memory, your tools, your keys: a stock agent becomes yours — on any machine, owned and private.

Private by design

Everything runs on the stick — no cloud round-trips, no telemetry, no accounts. Each capability and its data are encrypted at rest; lose the stick and a thief gets only ciphertext.

Works with any agent

Any client that can make a local HTTP call plugs in — Claude Code, Cursor, custom agents. A pasted snippet is the whole integration: no SDK, no plugin, no MCP.

Carry it anywhere

A USB stick is the whole platform. Binaries, config, and data live on the drive — plug into Windows, macOS, or Linux and your agent's powers travel with you. No installer, no lock-in.

The Suite

A growing kit of local capabilities

Each component is a self-contained capability any agent can use — all on the stick, all from Domu. Together they make a stock agent yours: the Memory Capsule (it knows you) and SecretVault (it acts as you) have shipped; the Foundry (it does more) is next.

Shipped · v1 core

Memory Capsule

A portable, encrypted memory store for AI agents.

A pure-Go binary and a single encrypted file you carry on a USB stick. Plug it into any machine — Windows, macOS, Linux — and your agent's memory travels with you, never the cloud.

  • Whole-DB encryption
    AES-256-GCM, sealed at rest
  • Local CPU embeddings
    bge-small, no network, no GPU
  • Semantic + keyword recall
    vector KNN fused with BM25
  • Pure Go, zero CGo
    one static binary, six targets
Open on GitHub MIT-licensed · runs from a USB stick
Shipped · v1

SecretVault

Your keys, sealed on the stick — the agent acts as you, never holding them.

Your API keys live encrypted beside your memory. The agent makes authenticated calls by reference through a local broker, so the raw secret never reaches the model or the cloud.

  • By-reference broker
    the agent never sees the key
  • Allowlist + resolve-then-pin
    SSRF-hardened egress
  • Approve writes · audit log
    bounded & observable
  • Pure Go, zero CGo
    one static binary, six targets
Open on GitHub MIT-licensed · loopback-only by default

Planned

Foundry

A local server that hosts plug-and-play skills and tools and the infrastructure they run on — database, queue, cache, object storage — a backend-in-a-box, all sealed on the stick.

→ your agent can do more

Read the vision
“The powers your AI relies on should belong to you — running on hardware you hold, owing nothing to the cloud, answering to no one else.”